nikosdano / vulnerable-lfi
A simple, LFI vulnerable PHP application
☆17Updated 6 years ago
Alternatives and similar repositories for vulnerable-lfi:
Users that are interested in vulnerable-lfi are comparing it to the libraries listed below
- PenTest Methodology☆14Updated last month
- Custom scan profiles for use with Burp Suite Pro☆110Updated 9 months ago
- Notes for CRTP☆39Updated 4 years ago
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆67Updated 2 years ago
- ☆39Updated last year
- Template used for my OSCP exam.☆26Updated 2 years ago
- Wordlist to bruteforce for LFI☆118Updated 5 years ago
- User enumeration and password spraying tool for testing Azure AD☆68Updated 2 years ago
- Vulnerability analysis and PoC for the Apache Tomcat - CGIServlet enableCmdLineArguments Remote Code Execution (RCE)☆17Updated 3 years ago
- ☆33Updated 2 years ago
- Vulnerable SAML infrastructure training applicaiton☆50Updated last year
- Script for Bug Bounty☆28Updated 3 years ago
- A Burp Suite plugin/extension that offers a shell in Burp. Both useful for OS Command injection and LFI exploration☆78Updated 4 years ago
- A simple automation tool to detect lfi, rce and ssti vulnerability☆55Updated 2 years ago
- Toolset for automating common management actions used in CTF's☆37Updated 3 years ago
- ☆32Updated 2 years ago
- Transition form local file inclusion attacks to remote code exection☆49Updated 4 years ago
- A simple NodeJS WebSocket WebApp vulnerable to blind SQL injection☆69Updated 3 years ago
- ☆48Updated 4 years ago
- ☆50Updated 2 years ago
- Advanced Reconnaissance and Web Application Discovery☆78Updated 3 years ago
- You don't need wires to be connected☆39Updated 4 years ago
- An MS Sharepoint and Frontpage Auditing Tool☆45Updated 2 months ago
- Damn Vulnerable PHP Application (DVPA) - It is Lab Written in The PHP lang, Which Contains PHP Type Juggling - RCE Challenges☆32Updated 2 years ago
- Collection of username lists for enumerating kerberos domain users☆84Updated 7 years ago
- Preparation for OSWE☆40Updated 4 years ago
- Automating Juicy Potato Local Privilege Escalation CMD exploit for penetration testers.☆39Updated 2 years ago
- Extract JavaScript files from burp suite project with ease.☆84Updated 2 years ago
- The (WordPress) website test script can be exploited for Unlimited File Upload via CVE-2020-35489☆30Updated 9 months ago